Researchers discovered a memory-corruption flaw in Zoom’s screen-sharing and annotation protocol that allows a meeting participant to trigger a zero-click remote code execution. This means an attacker could silently take over your device without any interaction from you while you are on a call. (source)
The threat comes from a drop in the barrier to entry for hackers. Digital defense firm A Security revealed that they uncovered the bug in early June using publicly available AI models. While it previously would have taken a team of five people about six months to find such a flaw, the researchers reached the same result in fewer than 20 prompts.
This democratization of hacking capabilities changes the security landscape for everyone. Because video conferencing is often treated as a trusted space, people tend to lower their guard. However, the researchers warn that an attacker could join a call, seize control of your computer, and move laterally into an enterprise network to steal credentials.
You can secure your account by following these specific steps:
- Update your software immediately to the patched versions: 7.1.5 or 7.0.6 for standard clients, and the relevant VDI/Rooms builds.
- Disable participant annotations account-wide if you cannot update all devices instantly.
- Restrict screen sharing permissions to trusted participants only using Zoom’s security guidelines.
- Evaluate your use of end-to-end encryption (E2EE); while E2EE protects privacy, it also prevents Zoom's server-side filters from blocking malicious messages, making local updates even more critical.
The window for proactive defense is open now. While there is currently no public CISA advisory specifically naming these CVEs, the technical fix is already available. Updating your client is the most effective way to ensure that a simple meeting invitation doesn't turn into a silent device takeover.








